CVE-2010-2179

Adobe Flash Player < 9.0.277.0 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, when Firefox or Chrome is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to URL parsing.

References (28)

... and 8 more

Scores

EPSS 0.2219
EPSS Percentile 95.7%

Classification

CWE
CWE-79
Status published

Affected Products (3)

adobe/flash_player < 9.0.277.0
adobe/air < 2.0.2.12610
n/a/n/a

Timeline

Published Jun 15, 2010
Tracked Since Feb 18, 2026